Apache Commons Text flaw is not a repeat of Log4Shell (CVE-2022-42889)Help Net Security·Oct 19, 00:00 UTC · Oct 19, 2022Vulnerability in the wildCVE-2022-4288960
CISA's new JCDC worked as intended, witnesses say at Senate hearing on Log4Shell bugCyberScoop·Feb 8, 18:22 UTC · Feb 8, 2022Exploit / PoC in the wild60
VMware urges to patch VMware Horizon servers against Log4j attacksSecurity Affairs·Jan 26, 13:21 UTC · Jan 26, 2022VulnerabilityCVE-2021-44228CVE-2021-4504660
Log4Shell update: Attack surface, attacks in the wild, mitigation and remediationHelp Net Security·Dec 13, 00:00 UTC · Dec 13, 2021Ransomware in the wildCVE-2021-44228160
H1 2022: Malware and Vulnerability Trends ReportRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025VulnerabilityCVE-2021-34473CVE-2021-34523CVE-2021-31207160
Log4Shell shows no sign of fading, spotted in 30% of CVE exploitsHelp Net Security·May 14, 00:00 UTC · May 14, 2024Exploit / PoCCVE-2017-9841CVE-2021-4422860
Lazarus Group Targets Log4Shell Flaw Via Telegram BotsInfosecurity Magazine·Dec 11, 17:00 UTC · Dec 11, 2023Threat actorCVE-2021-4422860
Week in review: Log4Shell lingers, NIS2 directive adopted, LastPass breached (again)Help Net Security·Dec 4, 00:00 UTC · Dec 4, 2022Data breach in the wildCVE-2021-3558760
Iranian Hackers Compromised a U.S. Federal Agency’s Network Using Log4Shell ExploitThe Hacker News·Nov 17, 08:45 UTC · Nov 17, 2022Data breachCVE-2021-4422860
Google Cloud offers good news and bad news on Log4Shell, other issuesCyberScoop·Feb 15, 17:25 UTC · Feb 15, 2022Exploit / PoC in the wild60
Microsoft Patch Tuesday, December 2021 EditionKrebs on Security·Dec 15, 00:00 UTC · Dec 15, 2021Vulnerability in the wildCVE-2021-43890CVE-2021-43905CVE-2021-43883+1 CVEs60
North Korean hacking ops continue to exploit Log4ShellCyberScoop·Dec 11, 13:00 UTC · Dec 11, 2023Ransomware in the wild60
Iran-linked threat actors compromise US Federal NetworkSecurity Affairs·Nov 17, 07:58 UTC · Nov 17, 2022Threat actor in the wildCVE-2021-4422860
Allies Warn of Iranian Ransom Attacks Using Log4ShellInfosecurity Magazine·Sep 16, 10:30 UTC · Sep 16, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-4510560
FTC warns legal action against businesses who fail to mitigate Log4J attacksSecurity Affairs·Jan 5, 14:51 UTC · Jan 5, 2022Policy & legalCVE-2021-4422860
Chinese APT Hackers Used Log4Shell Exploit to Target Academic InstitutionThe Hacker News·Dec 30, 10:07 UTC · Dec 30, 2021VulnerabilityCVE-2021-4422860
Log4Shell enumeration, mitigation and attack detection toolHelp Net Security·Dec 21, 00:00 UTC · Dec 21, 2021Exploit / PoC60
Apache Log4j Vulnerability — Log4Shell — Widely Under Active AttackThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Vulnerability in the wildCVE-2021-26084CVE-2021-4422860
Log4j zero-day gets security fix just as scans for vulnerable systems ramp upThe Record·Dec 21, 00:00 UTC · Dec 21, 2022Exploit / PoCCVE-2021-4422860
How Log4Shell remediation interfered with organizations' cybersecurity readinessHelp Net Security·Feb 24, 00:00 UTC · Feb 24, 2022Exploit / PoC60
Pay attention to Log4j attacks, Dutch National Cybersecurity Centre warnsSecurity Affairs·Jan 22, 20:34 UTC · Jan 22, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-4104+1 CVEs60
Week in review: Log4j new vulnerabilities, Microsoft patch bypass, 2022 e-commerce threat trendsHelp Net Security·Dec 26, 00:00 UTC · Dec 26, 2021VulnerabilityCVE-2021-44228CVE-2021-4044460
Second Log4j Vulnerability (CVE-2021The Hacker News·Dec 18, 13:56 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-4422860
Contrast CVE Shield aims to protect applications while security teams deploy patchesHelp Net Security·Jul 29, 00:00 UTC · Jul 29, 2026Vulnerability in the wildCVE-2021-44228160
Two-Fifths of Log4j Apps Use Vulnerable VersionsInfosecurity Magazine·Dec 11, 09:30 UTC · Dec 11, 2023VulnerabilityCVE-2022-23307CVE-2022-23305CVE-2022-23302+2 CVEs60
Ukraine investigates multiple intrusion vectors in last week's website defacements, data wiper attacksThe Record·Jan 17, 00:00 UTC · Jan 17, 2023MalwareCVE-2021-3264860
New Log4j attacks target SolarWinds, ZyXEL devicesThe Record·Jan 17, 00:00 UTC · Jan 17, 2023RansomwareCVE-2021-3524760
Quarterly Report: Incident Response Trends in Q2 2022Cisco Talos·Jul 26, 14:03 UTC · Jul 26, 2022RansomwareCVE-2021-44228CVE-2021-4504660
No Patch Available Yet for Critical SpringShell BugInfosecurity Magazine·Mar 31, 09:45 UTC · Mar 31, 2022VulnerabilityCVE-2010-162260
NHS Warns of Hackers Targeting Log4j Flaws in VMware HorizonThe Hacker News·Jan 8, 07:04 UTC · Jan 8, 2022Ransomware in the wildCVE-2021-4422860
Apache releases the third patch to address a new Log4j flawSecurity Affairs·Dec 18, 15:20 UTC · Dec 18, 2021Vulnerability in the wildCVE-2021-45046CVE-2021-44228CVE-2021-4510560
While attackers begin exploiting a second Log4j flaw, a third one emergesSecurity Affairs·Dec 18, 14:00 UTC · Dec 18, 2021RansomwareCVE-2021-45046CVE-2021-4422860
Hackers Exploit Log4j Vulnerability to Infect Computers with Khonsari RansomwareThe Hacker News·Dec 15, 00:00 UTC · Dec 15, 2021Ransomware in the wildCVE-2021-4422860
Friday Squid Blogging: The Far Side Squid ComicSchneier on Security·Dec 10, 22:05 UTC · Dec 10, 2021Exploit / PoCCVE-2021-44228160
Lazarus Group Using Log4j Exploits to Deploy Remote Access TrojansThe Hacker News·Dec 12, 04:59 UTC · Dec 12, 2023MalwareCVE-2021-44228CVE-2021-44832CVE-2023-4279360
Top 12 vulnerabilities list highlights troubling reality: many organizations still aren't patchingCyberScoop·Aug 3, 19:44 UTC · Aug 3, 2023Vulnerability in the wild60
Spring confirms ‘Spring4Shell’ zeroThe Record·Jan 17, 00:00 UTC · Jan 17, 2023Exploit / PoCCVE-2022-22965CVE-2022-2296360
Quarterly Report: Incident Response Trends in Q3 2022Cisco Talos·Oct 25, 12:00 UTC · Oct 25, 2022RansomwareCVE-2020-147260
Vishing Makes Phishing Campaigns Three Times More SuccessfulInfosecurity Magazine·Feb 24, 10:00 UTC · Feb 24, 2022Threat actorCVE-2021-35464CVE-2019-19781CVE-2021-4422860
The Log4j debacle showed again that public disclosure of 0-days only helps attackersHelp Net Security·Jan 6, 00:00 UTC · Jan 6, 2022Exploit / PoC60